s[.]team-zt[.]com
Riepilogo delle prove
Analysis of s.team-zt.com indicates a high‑risk generic phishing operation. The domain was registered on May 08, 2025 through Web Commerce Communications Limited and is currently taken offline, suggesting that the malicious infrastructure has been disrupted or abandoned. DNS resolution points to the IPv4 address 194.87.216.152, which is hosted in the Netherlands under autonomous system AS215540 (Global Connectivity Solutions LLP). Both authoritative nameservers are Cloudflare‑managed (KANYE.NS.CLOUDFLARE.COM and MELANY.NS.CLOUDFLARE.COM), a common choice for threat actors seeking rapid DNS changes and DDoS protection.
The site employed a Let’s Encrypt E7 certificate, providing valid TLS encryption but offering no indication of legitimacy. Reputation signals are strongly negative: Gridinsoft assigns a trust score of 0 / 100, and the domain appears on one security blocklist. Google Safe Browsing flags the site for social engineering, and PhishDestroy has also blocked it. VirusTotal analysis shows that 16 of 93 scanned security vendors flagged the domain, confirming the presence of malicious indicators.
The combination of a low trust score, blocklist presence, multiple vendor detections, and a recent creation date aligns with typical phishing infrastructure. Uncertainty remains around the exact payload or credential‑harvesting mechanisms because no page‑title or content details have been disclosed. Defensive actions should include adding the domain to local blocklists, monitoring DNS queries for the associated IP and Cloudflare nameservers, and ensuring that any inbound traffic to the IP is denied. Organizations should also update web‑filtering solutions to reflect the Google Safe Browsing classification and consider sharing the indicators with threat‑intelligence sharing platforms to aid broader community mitigation.
Data Coverage
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 12/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Cronologia del rilevamento
-
Cloudflare Radar
Scansione Cloudflare Radar archiviata · Apri scansione
-
VirusTotal
16 → 17
-
Cloudflare Radar
Scansione Cloudflare Radar archiviata · Apri scansione
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, nomi TLS e date
ICANN OVERSIGHT
Registration: team-zt.com
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain team-zt.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analisi di VirusTotal
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo